VDB
BELL-CVE-2023-6246
BELL-CVE-2023-6246
PUBLISHED
CVSS 7.800000190734863 HIGH
Risk Scores
CVSS 3.1
7.800000190734863
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| BellSoft Hardened Containers:23 | glibc | 2.37.0-r9, 2.37.0-r9, 2.37.0-r9 |
| Alpaquita:23 | glibc | 2.37.0-r9, 2.37.0-r9, 2.37.0-r9 |
| BellSoft Hardened Containers:stream | glibc | 2.37.0-r9, 2.37.0-r9, 2.37.0-r9 |
| Alpaquita:stream | glibc | 2.37.0-r9, 2.37.0-r9, 2.37.0-r9 |
Exploit Intelligence
- elpe-pinillo/CVE-2023-6246 (github-poc-repo)
- CVE-2023-6246 glibc __vsyslog_internal() heap buffer overflow exploitation using Convergent Time Theory (α = 0.0302011). 33-layer temporal heap spray + phase-locked trigger for reliable local privilege escalation. (github-poc-repo)
- CVE-2023-6246 glibc __vsyslog_internal() heap buffer overflow exploitation using Convergent Time Theory (α = 0.0302011). 33-layer temporal heap spray + phase-locked trigger for reliable local privilege escalation. (github-poc)
- elpe-pinillo/CVE-2023-6246 (github-poc)
- DemoReseedInfra.kt (github-poc)
Timeline
- Feb 1, 2024 CVE Published
- Jan 26, 2026 CVE Updated